CVE-2024-26913Integer Underflow (Wrap or Wraparound) in Linux

Severity
7.8HIGHNVD
EPSS
0.0%
top 97.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 17

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue [why] odm calculation is missing for pipe split policy determination and cause Underflow/Corruption issue. [how] Add the odm calculation.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages12 packages

NVDlinux/linux_kernel6.76.7.6
Debianlinux/linux_kernel< 6.7.7-1+1
CVEListV5linux/linux4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7ccdbe0be8874c63bca85b8c38e5b1eecbdd18df31+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2qw2-mf8f-r46g: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue [why] odm calculation2024-04-17
OSV
CVE-2024-26913: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue [why] odm calculation i2024-04-17

📋Vendor Advisories

3
Red Hat
kernel: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue2024-04-17
Microsoft
drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue2024-04-09
Debian
CVE-2024-26913: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amd/dis...2024

💬Community

1
Bugzilla
CVE-2024-26913 kernel: drm/amd/display: Fix dcn35 8k30 Underflow/Corruption Issue2024-04-17
CVE-2024-26913 — Integer Underflow (Wrap or Wraparound) | cvebase